From ba09fdaf0a9f9f9c7baf48c49da207e246221d2c Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sun, 23 Jan 2022 16:04:52 +0000 Subject: [PATCH] fix: package.json & package-lock.json to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-MARKED-2342073 - https://snyk.io/vuln/SNYK-JS-MARKED-2342082 --- package-lock.json | 6 +++--- package.json | 2 +- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/package-lock.json b/package-lock.json index 7b1baf7..e9bc667 100644 --- a/package-lock.json +++ b/package-lock.json @@ -282,9 +282,9 @@ "integrity": "sha1-MKCy2jj3N3DoKUoNIuZiXtd9AJc=" }, "marked": { - "version": "0.3.19", - "resolved": "https://registry.npmjs.org/marked/-/marked-0.3.19.tgz", - "integrity": "sha512-ea2eGWOqNxPcXv8dyERdSr/6FmzvWwzjMxpfGB/sbMccXoct+xY+YukPD+QTUZwyvK7BZwcr4m21WBOW41pAkg==" + "version": "4.0.10", + "resolved": "https://registry.npmjs.org/marked/-/marked-4.0.10.tgz", + "integrity": "sha512-+QvuFj0nGgO970fySghXGmuw+Fd0gD2x3+MqCWLIPf5oxdv1Ka6b2q+z9RP01P/IaKPMEramy+7cNy/Lw8c3hw==" }, "minimist": { "version": "0.0.8", diff --git a/package.json b/package.json index a2cb7d5..3cb4d58 100644 --- a/package.json +++ b/package.json @@ -5,7 +5,7 @@ "description": "the koa website", "dependencies": { "highlight.js": "^9.14.2", - "marked": "~0.3.17", + "marked": "~4.0.10", "pug": "^2.0.0-rc.2", "pug-cli": "^1.0.0-alpha6", "stdin": "0.0.1"